CtrlK
BlogDocsLog inGet started
Tessl Logo

sharp-edges

sharp-edges

36

Quality

33%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Passed

No findings from the security scan

Fix and improve this skill with Tessl

tessl review fix ./plugins/AI-Agents-Safe-Coding-Skills/skills/sharp-edges/SKILL.md

The canonical home for this skill is sharp-edges in administrakt0r/AI-Agents-Safe-Coding-Skills

SKILL.md
Quality
Evals
Security

Quality

Content

67%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

This is a well-structured security analysis skill with strong actionability through concrete code examples and clear detection patterns across multiple sharp edge categories. The workflow is well-sequenced with validation steps and a quality checklist. Main weaknesses are moderate verbosity (the rationalizations table and some explanatory text could be trimmed) and the inability to verify referenced bundle files exist.

Suggestions

Trim the 'Rationalizations to Reject' table — Claude already understands why 'it's documented' is insufficient; a brief bullet list would suffice and save ~15 lines.

Consider moving the detailed category examples (sections 1-6) into a separate reference file, keeping only brief descriptions and detection patterns inline to improve conciseness.

DimensionReasoningScore

Conciseness

The skill is reasonably well-structured but includes some unnecessary explanation that Claude would already know (e.g., explaining what 'pit of success' means, the 'Rationalizations to Reject' table is somewhat verbose). The examples are valuable but the overall document is lengthy (~200+ lines) with some sections that could be tightened. The rationalization table, while useful, explains concepts Claude already understands about secure API design.

3 / 5

Actionability

The skill provides concrete, executable code examples across multiple languages (PHP, Python, Go, YAML) demonstrating specific footguns. The detection patterns are specific and actionable. However, some guidance remains at the 'questions to ask' level rather than providing fully executable analysis scripts or automated detection approaches. The workflow phases are clear but somewhat abstract in places.

4 / 5

Workflow Clarity

The four-phase analysis workflow (Surface Identification → Edge Case Probing → Threat Modeling → Validate Findings) is clearly sequenced with specific sub-steps. Phase 4 includes a validation/feedback loop ('If a finding seems questionable, return to Phase 2'). The quality checklist at the end serves as a verification checkpoint. Minor gap: no explicit guidance on what to do when findings conflict or how to prioritize across categories.

4 / 5

Progressive Disclosure

The skill has a well-organized structure with clear section headers and references to external files (references/crypto-apis.md, config-patterns.md, auth-patterns.md, case-studies.md, and language-specific guides). References are one level deep and clearly signaled. However, since no bundle files were provided, we cannot verify these references exist. The main content is appropriately scoped as an overview with pointers to detailed materials, though some inline content (like the full rationalizations table) could potentially be moved to a reference file.

4 / 5

Total

15

/

20

Passed

Description

0%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

This description is essentially a label or title rather than a functional description. It provides zero information about what the skill does, when it should be used, or what domain it covers. Claude would have no basis for selecting this skill appropriately from a list of available skills.

Suggestions

Replace the cryptic label with a clear statement of what the skill does, e.g., 'Identifies and documents sharp edges or pitfalls in [specific domain]'.

Add an explicit 'Use when...' clause with concrete trigger terms so Claude knows when to select this skill.

Include specific actions and natural keywords that users would actually say when they need this skill's functionality.

DimensionReasoningScore

Specificity

The description 'sharp-edges' contains no concrete actions whatsoever. It is entirely vague and abstract with no indication of what the skill does.

1 / 5

Completeness

The description answers neither 'what does this do' nor 'when should Claude use it'. It is a single cryptic term with no explanatory content.

1 / 5

Trigger Term Quality

'sharp-edges' is not a natural keyword any user would use when requesting help. It contains no recognizable domain terms, file types, or action words.

1 / 5

Distinctiveness Conflict Risk

'Sharp-edges' is so vague and ambiguous it could refer to anything — image processing, safety warnings, code review, physical objects — making it impossible to distinguish from other skills.

1 / 5

Total

4

/

20

Passed

Validation

81%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation9 / 11 Passed

Validation for skill structure

CriteriaDescriptionResult

description_field

'description' is very short (11 chars), consider making it more detailed

Warning

frontmatter_unknown_keys

Unknown frontmatter key(s) found; consider removing or moving to metadata

Warning

Total

9

/

11

Passed

Repository
administrakt0r/AI-Agents-Safe-Coding-Skills
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.